JetBrains Kotlin 1.4.0 Milestone 2

CPE Details

JetBrains Kotlin 1.4.0 Milestone 2
1.4.0
2020-09-02
18h25 +00:00
2020-09-02
18h25 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:jetbrains:kotlin:1.4.0:milestone2:*:*:*:*:*:*

Informations

Vendor

jetbrains

Product

kotlin

Version

1.4.0

Update

milestone2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-24329 2022-02-25 13h35 +00:00 In JetBrains Kotlin before 1.6.0, it was not possible to lock dependencies for Multiplatform Gradle Projects.
5.3
Medium
CVE-2020-29582 2021-02-03 14h20 +00:00 In JetBrains Kotlin before 1.4.21, a vulnerable Java API was used for temporary file and folder creation. An attacker was able to read data from such files and list directories due to insecure permissions.
5.3
Medium
CVE-2020-15824 2020-08-08 18h21 +00:00 In JetBrains Kotlin from 1.4-M1 to 1.4-RC (as Kotlin 1.3.7x is not affected by the issue. Fixed version is 1.4.0) there is a script-cache privilege escalation vulnerability due to kotlin-main-kts cached scripts in the system temp directory, which is shared by all users by default.
8.8
High